CVE-2008-0241

Open redirect vulnerability in /idm/user/login.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the nextPage parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:java_system_identity_manager:6.0:sp2:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:7.0:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:7.1:*:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:6.0:sp3:*:*:*:*:*:*
cpe:2.3:a:sun:java_system_identity_manager:6.0:sp1:*:*:*:*:*:*

Information

Published : 2008-01-11 14:46

Updated : 2018-10-15 14:58


NVD link : CVE-2008-0241

Mitre link : CVE-2008-0241


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

sun

  • java_system_identity_manager